<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>GitHub on Cloud Native &amp; Open Source: A Team Lead’s Working Journal</title>
    <link>https://www.msbiro.net/tags/github/</link>
    <description>Recent content in GitHub on Cloud Native &amp; Open Source: A Team Lead’s Working Journal</description>
    <image>
      <title>Cloud Native &amp; Open Source: A Team Lead’s Working Journal</title>
      <url>https://www.msbiro.net/%3Clink%20or%20path%20of%20image%20for%20opengraph,%20twitter-cards%3E</url>
      <link>https://www.msbiro.net/%3Clink%20or%20path%20of%20image%20for%20opengraph,%20twitter-cards%3E</link>
    </image>
    <generator>Hugo -- 0.164.0</generator>
    <language>en-us</language>
    <lastBuildDate>Thu, 02 Apr 2026 08:00:00 +0000</lastBuildDate>
    <atom:link href="https://www.msbiro.net/tags/github/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Hardening ACTUI: Dependabot and OpenSSF Scorecard for a Side Project</title>
      <link>https://www.msbiro.net/posts/actui-security-hardening-dependabot-openssf-scorecard/</link>
      <pubDate>Thu, 02 Apr 2026 08:00:00 +0000</pubDate>
      <guid>https://www.msbiro.net/posts/actui-security-hardening-dependabot-openssf-scorecard/</guid>
      <description>Back from KubeCon EU 2026 with a free Copilot Pro&#43; subscription, I turned my attention to the security posture of apple-container-tui. Here&amp;#39;s how I added Dependabot and OpenSSF Scorecard using GitHub Actions, spec-kit, and the GitHub CLI.</description>
    </item>
    <item>
      <title>Investing in the Future: $12.5 Million to Fortify Open Source Security</title>
      <link>https://www.msbiro.net/posts/investing-in-the-future-12-5-million-to-fortify-open-source-security/</link>
      <pubDate>Fri, 20 Mar 2026 05:45:00 +0000</pubDate>
      <guid>https://www.msbiro.net/posts/investing-in-the-future-12-5-million-to-fortify-open-source-security/</guid>
      <description>A major coalition of tech giants including Microsoft, Google, AWS, and GitHub has announced a $12.5 million investment to strengthen open-source security. Managed by OpenSSF and Alpha-Omega, this funding aims to scale security defenses using AI and support overworked maintainers. Discover why this is a pivotal moment for the OSS ecosystem.</description>
    </item>
    <item>
      <title>GitHub Copilot: The High-ROI Multi-Model Powerhouse</title>
      <link>https://www.msbiro.net/posts/github-copilot-roi-multi-model-roi/</link>
      <pubDate>Tue, 17 Mar 2026 10:00:00 +0000</pubDate>
      <guid>https://www.msbiro.net/posts/github-copilot-roi-multi-model-roi/</guid>
      <description>Why GitHub Copilot Pro is currently the best value for developers, offering instant access to SOTA models like Claude 4.6 Sonnet and GPT-5.4, plus a look at Enterprise administration.</description>
    </item>
    <item>
      <title>GitHub Spec-Kit: Why Structured AI Development Beats Vibe Coding</title>
      <link>https://www.msbiro.net/posts/github-spec-kit-spec-driven-development/</link>
      <pubDate>Wed, 21 Jan 2026 09:23:27 +0000</pubDate>
      <guid>https://www.msbiro.net/posts/github-spec-kit-spec-driven-development/</guid>
      <description>A DevSecOps team leader&amp;#39;s perspective on GitHub Spec-Kit, spec-driven development, and why structured AI workflows matter for compliance, auditability, and team collaboration.</description>
    </item>
  </channel>
</rss>
